diff options
author | marino <marino@pkgsrc.org> | 2011-11-28 19:33:13 +0000 |
---|---|---|
committer | marino <marino@pkgsrc.org> | 2011-11-28 19:33:13 +0000 |
commit | acb9ab6be46fc93b7fa724db6fa262819e65a69f (patch) | |
tree | aac10b4a0b86e9121d7380bdf172a767c094ea98 /math/R-CGIwithR | |
parent | 3b33120a877b9523e4bb172e833ee1e915517693 (diff) | |
download | pkgsrc-acb9ab6be46fc93b7fa724db6fa262819e65a69f.tar.gz |
security/kth-krb4: Add DragonFly and FreeBSD support
The majority of these patches were inspired from FreeBSD's ports. FreeBSD,
along with at least Debian, have removed Kerberos4 due to secuity concerns.
From: http://web.mit.edu/kerberos/krb4-end-of-life.html :
"Serious protocol flaws[2] have been found in Kerberos 4. These flaws permit
attacks which require far less effort than an exhaustive search of the DES
key space. These flaws make Kerberos 4 cross-realm authentication an
unacceptable security risk and raise serious questions about the security of
the entire Kerberos 4 protocol.
The known insecurity of DES, combined with the recently discovered protocol
flaws, make it extremely inadvisable to rely on the security of version 4 of
the Kerberos protocol. These factors motivate the MIT Kerberos Team to remove
support for Kerberos version 4 from the MIT implementation of Kerberos."
This end-of-life announcement is dated 19 October 2006. I think it's a
good question to ask why this package and the packages that depend on it
are still in pkgsrc.
Diffstat (limited to 'math/R-CGIwithR')
0 files changed, 0 insertions, 0 deletions